Sha256: 1921026ee2cde00aa40f28b4177c2ede89ff2ee438ebcad21034703cbe1741fd

Contents?: true

Size: 1.13 KB

Versions: 3

Compression:

Stored size: 1.13 KB

Contents

# frozen_string_literal: true

module SolidusJwt
  module DeviseStrategies
    class RefreshToken < Base
      def authenticate!
        return fail!(:invalid) if resource.nil? || resource.user.nil?

        block = proc do
          # If we honor then mark the refresh token as stale for one time use
          # rubocop:disable Rails/SkipsModelValidations
          resource.honor? && resource.update_columns(active: false)
          # rubocop:enable Rails/SkipsModelValidations
        end

        if resource.user.valid_for_authentication?(&block)
          return success!(resource.user)
        end

        fail!(:invalid)
      end

      private

      def resource
        @resource ||= SolidusJwt::Token.find_by(auth_hash)
      end

      def auth_hash
        { auth_type: :refresh, token: refresh_token }
      end

      def refresh_token
        params[:refresh_token]
      end

      def valid_grant_type?
        grant_type == 'refresh_token'
      end

      def valid_params?
        refresh_token.present?
      end
    end
  end
end

Warden::Strategies.add(:solidus_jwt_refresh_token, SolidusJwt::DeviseStrategies::RefreshToken)

Version data entries

3 entries across 3 versions & 1 rubygems

Version Path
solidus_jwt-1.2.2 lib/solidus_jwt/devise_strategies/refresh_token.rb
solidus_jwt-1.2.1 lib/solidus_jwt/devise_strategies/refresh_token.rb
solidus_jwt-1.2.0 lib/solidus_jwt/devise_strategies/refresh_token.rb